First published: Fri Nov 01 2024(Updated: )
Missing Authorization vulnerability in Popup Maker allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Popup Maker: from n/a through 1.19.2.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Popup Maker | <1.20.0 |
Update to 1.20.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-47358 has a medium severity rating due to the missing authorization that can lead to unauthorized access.
To fix CVE-2024-47358, update Popup Maker to version 1.20.0 or later to ensure proper access controls are implemented.
The impact of CVE-2024-47358 allows attackers to gain access to functionalities that are not properly constrained by access control lists.
Popup Maker versions from n/a through 1.19.2 are affected by CVE-2024-47358.
A temporary workaround for CVE-2024-47358 is to manually review and restrict access to vulnerable functionalities until an update is applied.